Week 16 – 2018

Campaigning for the 4Cast Awards is in full swing; I think I got three emails about it last week! The link to vote is here.

FORENSIC ANALYSIS

THREAT INTELLIGENCE/HUNTING

  • Hacker Hurricane shared out “a sample WinLogBeat.yml file for ELK and Humio users to collect the right stuff and provide an example of how to exclude various events to collect less noise and make your log management experience easier.”
    Sample WinLogBeat.yml file for ELK and Humio users

  • Swelcher have released a Volatility wrapper script that allows for incorporating additional information such as plugin name and IP address into a SEIM, specifically Graylog.
    From Volatility to Graylog

UPCOMING WEBINARS/CONFERENCES

PRESENTATIONS/PODCASTS

MALWARE

MISCELLANEOUS

SOFTWARE UPDATES

And that’s all for Week 16! If you think I’ve missed something, or want me to cover something specifically hit me up through the contact page or on the social pipes!

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Google+ photo

You are commenting using your Google+ account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s